PT-2014-8294 · Linux+5 · Linux Kernel+5

Published

2014-11-10

·

Updated

2023-02-13

·

CVE-2014-7826

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions through 3.17.2
Description The issue allows local users to gain privileges or cause a denial of service due to an invalid pointer dereference. This occurs when the ftrace subsystem is used and private syscall numbers are not handled properly.
Recommendations For Linux kernel versions through 3.17.2, update to a version that contains a fix for this issue to prevent local users from gaining privileges or causing a denial of service.

Exploit

Fix

DoS

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALT-PU-2014-2361
ALT-PU-2014-2362
CESA-2015_0290
CESA-2015_0864
CVE-2014-7826
OPENSUSE-SU-2014_1669-1
OPENSUSE-SU-2014_1677-1
OPENSUSE-SU-2014_1678-1
RHSA-2014:1943
RHSA-2015:0290
RHSA-2015:0864
RHSA-2015_0290
RHSA-2015_0864
SUSE-RU-2015:0621-1
SUSE-SU-2015:0481-1
SUSE-SU-2015:0581-1
SUSE-SU-2015:0736-1
SUSE-SU-2015:1174-1
SUSE-SU-2015:1376-1
USN-2443-1
USN-2444-1
USN-2445-1
USN-2446-1
USN-2447-1
USN-2447-2
USN-2448-1

Affected Products

Alt Linux
Centos
Linux Kernel
Red Hat
Suse
Ubuntu